CVE-2009-2825
- EPSS 0.13%
- Veröffentlicht 10.11.2009 19:30:01
- Zuletzt bearbeitet 09.04.2025 00:30:58
Certificate Assistant in Apple Mac OS X before 10.6.2 does not properly handle a '\0' character in a domain name in the subject's Common Name (CN) field of an X.509 certificate, which might allow man-in-the-middle attackers to spoof arbitrary SSL ser...
CVE-2009-2826
- EPSS 1.89%
- Veröffentlicht 10.11.2009 19:30:01
- Zuletzt bearbeitet 09.04.2025 00:30:58
Multiple integer overflows in CoreGraphics in Apple Mac OS X 10.5.8 allow remote attackers to execute arbitrary code or cause a denial of service (application crash) via a crafted PDF document that triggers a heap-based buffer overflow.
CVE-2009-2827
- EPSS 1.9%
- Veröffentlicht 10.11.2009 19:30:01
- Zuletzt bearbeitet 09.04.2025 00:30:58
Heap-based buffer overflow in Disk Images in Apple Mac OS X 10.5.8 allows user-assisted remote attackers to execute arbitrary code or cause a denial of service (application crash) via a crafted FAT filesystem on a disk image.
CVE-2009-2828
- EPSS 2.31%
- Veröffentlicht 10.11.2009 19:30:01
- Zuletzt bearbeitet 09.04.2025 00:30:58
The server in DirectoryService in Apple Mac OS X 10.5.8 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via unspecified vectors.
- EPSS 0.75%
- Veröffentlicht 10.11.2009 19:30:01
- Zuletzt bearbeitet 09.04.2025 00:30:58
Event Monitor in Apple Mac OS X 10.5.8 does not properly handle crafted authentication data sent to an SSH daemon, which allows remote attackers to cause a denial of service via vectors involving processing of XML log documents by other services, rel...
CVE-2009-2830
- EPSS 1.61%
- Veröffentlicht 10.11.2009 19:30:01
- Zuletzt bearbeitet 09.04.2025 00:30:58
Multiple buffer overflows in Christos Zoulas file before 5.03 in Apple Mac OS X 10.6.x before 10.6.2 allow user-assisted remote attackers to execute arbitrary code or cause a denial of service (application crash) via a crafted Common Document Format ...
CVE-2009-2831
- EPSS 0.35%
- Veröffentlicht 10.11.2009 19:30:01
- Zuletzt bearbeitet 09.04.2025 00:30:58
Dictionary in Apple Mac OS X 10.5.8 allows remote attackers to create arbitrary files with any contents, and thereby execute arbitrary code, via crafted JavaScript, related to a "design issue."
CVE-2009-2832
- EPSS 1.84%
- Veröffentlicht 10.11.2009 19:30:01
- Zuletzt bearbeitet 09.04.2025 00:30:58
Buffer overflow in FTP Server in Apple Mac OS X before 10.6.2 allows remote attackers to execute arbitrary code or cause a denial of service (daemon crash) via a CWD command specifying a pathname in a deeply nested hierarchy of directories, related t...
CVE-2009-2833
- EPSS 0.67%
- Veröffentlicht 10.11.2009 19:30:01
- Zuletzt bearbeitet 09.04.2025 00:30:58
Buffer overflow in the UCCompareTextDefault API in International Components for Unicode in Apple Mac OS X 10.5.8 allows context-dependent attackers to execute arbitrary code or cause a denial of service (application crash) via unspecified vectors.
CVE-2009-2834
- EPSS 0.07%
- Veröffentlicht 10.11.2009 19:30:01
- Zuletzt bearbeitet 09.04.2025 00:30:58
IOKit in Apple Mac OS X before 10.6.2 allows local users to modify the firmware of a (1) USB or (2) Bluetooth keyboard via unspecified vectors.